From b88839455d4f01a85a0859d896fc8bebfe620aa7 Mon Sep 17 00:00:00 2001 From: Tomáš Levora Date: Wed, 19 Dec 2018 15:34:21 +0100 Subject: Add ansible firewall role MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Adding role to disable firewall to prevent any issue with communication during the installation Change-Id: I2390f0bc5062933e6a8bf4dcbc0b255b283f993d Issue-ID: OOM-1551 Signed-off-by: Tomáš Levora --- ansible/roles/firewall/tasks/firewall-disable.yml | 17 +++++++++++++++++ 1 file changed, 17 insertions(+) create mode 100644 ansible/roles/firewall/tasks/firewall-disable.yml (limited to 'ansible/roles/firewall/tasks/firewall-disable.yml') diff --git a/ansible/roles/firewall/tasks/firewall-disable.yml b/ansible/roles/firewall/tasks/firewall-disable.yml new file mode 100644 index 00000000..9a8a2c10 --- /dev/null +++ b/ansible/roles/firewall/tasks/firewall-disable.yml @@ -0,0 +1,17 @@ +--- +- name: Check if firewalld is installed + yum: + list: firewalld + disablerepo: "*" + register: firewalld_check + +- name: Stop and disable firewalld if exists + service: + name: firewalld + state: stopped + enabled: no + when: firewalld_check.results|selectattr('yumstate', 'match', 'installed')|list|length != 0 + +- name: Flush iptables + iptables: + flush: true -- cgit 1.2.3-korg